AMENDMENTS TO THE CLAIMS 

This listing of claims will replace all prior versions, and listings, of claims in the 
application: 



Listing of Claims: 

1 . (Currently Amended) A method comprising: 

reading from a lms-t--software module . N s a set of keys associated with a 
trusted source, wherein the set of keys is embedded in the isf-si-software module pinary 




determining whether a key ^ ; c N v o v o v > N+ x o\ * ^ r N t • > + \^ \ o r o 
Kev ueinq presented by or read from a ^\\w ** v. x x x ^ \ %N , N * 




determining whether the key is identified in a list of compromised keys; and 
if the key is not identified as compromised and is traceable to one of the keys in 
the set of keys, assigning the key a trusted status. 

2. (Currently Amended) The method of claim 1 further comprising: 

verifying the integrity of a-the document ^ o\\ ^ * t N comprising4te-key- 
afi4 the list of compromised keys. 

3. (Cancelled). 

4. (Previously Presented) The method of claim 1 in which determining whether the key 
is traceable to one of the keys in the set of keys further comprises: 

tracing the key through a certificate chain to one of the keys in the set of keys. 

5. (Currently Amended) The method of claim 1 \ -o-o * ^ \+ 
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a hash 



of the fii-Si- software module N \ ^ >^ ^ \\ - ^ s i 

6. (Original) The method of claim 2 in which the document is a manifest signed by the 
key. 

7. (Original) The method of claim 1 in which determining whether the key is identified in 
the list of compromised keys further comprises: 

searching the list of compromised keys for the key. 

8. (Currently Amended) A method comprising: 

producing a document comprising an identification of a fifst-software module 

r '\r : and a list of compromised keys; and 

digitally signing the document using a key presented by or read from - ^-\*v> 
- n \ * v .\ , s and traceable to one key of a set of keys, wherein the set 

of keys is embedded in the -w-s-i -software module o v : \ cO o o\ - , v i \ N 



9. (Currently Amended) The method of claim 8 in which the identification of the ^ 
software module . N v comprises a hash value of the fe-st-software module . N , N 

10. (Currently Amended) The method of claim 8 in which the key is traceable to one of 
the keys in the set of keys embedded in the first- software module ^ v \ by way of a 
certificate chain. 

1 1 . (Currently Amended) The method of claim 8 further comprising: 

making the document available on a communication network by which computer 
systems comprising the fifst-software module ^ o % \ may read the document. 
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12. (Cancelled). 

1 3. (Currently Amended) A device comprising: 

a processor; 

a machine-readable storage medium coupled to the processor by way of a bus, 
the storage medium storing instructions which, when executed by the processor, cause 
the device to 




determine whether the key is identified in a list of compromised keys;, and 
if the key is not identified as compromised and is traceable to one of the 
keys in the set of keys, assign the key a trusted status. 

14. (Currently Amended) The device of claim 1 3 in which the instructions, when 
executed by the device, further cause the device to: 

verify the integrity of - ,\ document s v N s s comprising ^ v 

afid-the list of compromised keys. 

15. (Canceled) 

16. (Previously Presented) The device of claim 13 in which the instructions, when 
executed by the device, further cause the device to: 

trace the key through a certificate chain to one of the keys in the set of keys. 
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1 7. (Currently Amended) A device comprising: 
a processor; 

a machine-readable storage medium coupled to the processor by way of a bus, 
the storage medium storing instructions which, when executed by the processor, cause 
the device to: 

produce a document comprising an identification of a #st-software module 
" \ and a list of compromised keys; and 

digitally sign the document using a key presented by or read from & 
^ ,v- >v ^ -wv* ^ \ ■, \\ N \ * and traceable to one key of a set of keys, 
wherein the set of keys is embedded in the ^ software module i o \ * ^ ^ 



18. (Currently Amended) The device of claim 1 7 in which the identification of the--f4rst 
software module . N \> * comprises a hash value of the firs^-software module . N ^ * 

1 9. (Currently Amended) The device of claim 1 7 in which the key is traceable to one of 
the keys in the set of keys embedded in the fesi- software module N \ by way of a 
certificate chain. 

20. (Currently Amended) An article comprising a machine-readable medium having 
stored thereon instructions which, when executed by a processor, result in: 

reading from a first-software module ^ \ a set of keys associated with a 
trusted source, wherein the set of keys is embedded in the wst- software module omarv 
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determining whether the key is identified in a list of compromised keys; and 
if the key is not identified as compromised and is traceable to one of keys in the 
set of keys, assigning the key a trusted status. 

21 . (Currently Amended) The article of claim 20 in which the instructions, when 
executed by the processor, further result in: 

verifying the integrity of a-the document * * « w - r N comprising the key 
afKl-the list of compromised keys. 

22. (Cancelled). 

23. (Previously Presented) The article of claim 20 in which the sequence of instructions, 
when executed by the processor, further result in: 

tracing the key through a certificate chain to one of the keys in the set of keys. 

24. (Currently Amended) An article comprising a machine-readable medium having 
stored thereon instructions which, when executed by a processor, result in: 

producing a document comprising an identification of a lirst-software module 
- N ^ \ and a list of compromised keys; and 

digitally signing the document using a key presented by or read from a-the 
.eje< , + \-s v^,; sv v^ -*\+ ^ , N - ^ and traceable to one key of a set of keys, wherein 
the set of keys is embedded in the w-st-- software module ^ " , vV,\ N o ,> \ 



25. (Currently Amended) The article of claim 24 in which the identification of the s> 
software module . comprises a hash value of the fifst-software module . ,\ 



IPN: P6764 



-6- 

Attorney's Docket No.: 1 16536-153402 
Application No.: 09/397,455 



26. (Currently Amended) The article of claim 24 in which the key is traceable by way of 
a certificate chain to one of the keys in the set of keys embedded in the flFst-software 
module r \ . 
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